> Privacy Policy

Last updated: January 2025

Command Zero ("we," "our," or "us") operates the Command Zero cybersecurity certification training platform. This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our service.

1. Information We Collect

Account Information

When you create an account through Google OAuth, we receive your name, email address, and profile picture from Google. We use Clerk as our authentication provider to securely manage your login credentials.

Usage Data

We collect information about how you use our platform, including quiz attempts, answers selected, time spent on questions, and navigation patterns. This data helps us improve the learning experience.

Progress Data

We store your quiz results, scores, accuracy rates, and progress across certification domains. This information is used to track your learning journey and provide personalized recommendations.

Payment Information

If you subscribe to Premium, payment processing is handled by Stripe. We do not store your credit card details. Stripe may collect billing information as described in their privacy policy.

2. How We Use Your Information

We use your information to:

  • Provide and maintain the Command Zero platform
  • Track your learning progress and display performance analytics
  • Personalize your study experience with recommendations
  • Process Premium subscription payments
  • Send important service updates and notifications
  • Improve our question bank and study features
  • Detect and prevent fraudulent or abusive behavior

3. Third-Party Services

Clerk (Authentication)

We use Clerk to manage user authentication. When you sign in with Google, Clerk processes your authentication data. View Clerk's privacy policy at clerk.com/legal/privacy.

Supabase (Database)

Your quiz progress, session data, and user preferences are stored in Supabase, a secure PostgreSQL database service. Data is encrypted at rest and in transit.

Stripe (Payments)

Premium subscriptions are processed through Stripe. Stripe handles all payment card data and is PCI-DSS compliant. View Stripe's privacy policy at stripe.com/privacy.

Google AdSense (Advertising)

Free tier users may see advertisements served by Google AdSense. Google may use cookies to serve personalized ads based on your browsing history. You can manage ad preferences at adssettings.google.com.

4. Data Retention

We retain your account and progress data for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except where we are required to retain it for legal or security purposes.

Quiz session data may be retained in anonymized form for analytics and platform improvement.

5. Data Security

We implement industry-standard security measures to protect your data:

  • All data is encrypted in transit using HTTPS/TLS
  • Database data is encrypted at rest
  • Authentication is handled by Clerk with secure session management
  • Access to user data is restricted to authorized personnel
  • Regular security reviews and updates

6. Your Rights

Depending on your location, you may have the following rights:

  • Access: Request a copy of your personal data
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your account and data
  • Export: Request an export of your data in a portable format
  • Opt-out: Manage advertising preferences and marketing communications

To exercise these rights, contact us at privacy@commandzero.dev.

7. Cookies and Tracking

We use cookies and similar technologies for:

  • Authentication: Keeping you signed in securely
  • Preferences: Remembering your settings and choices
  • Analytics: Understanding how our platform is used
  • Advertising: Serving relevant ads to free tier users (via Google AdSense)

You can control cookies through your browser settings, though some features may not work correctly if cookies are disabled.

8. Children's Privacy

Command Zero is not intended for users under 16 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice on our platform or sending an email. Your continued use of Command Zero after changes take effect constitutes acceptance of the updated policy.

10. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

Email: privacy@commandzero.dev